HIGH
Jenkins Sounds Plugin 0.5 and earlier does not perform permission checks in URLs performing form validation, allowing attackers with Overall/Read access to execute arbitrary OS commands as the OS user account running Jenkins
Published Jan 15, 2020
8.8
HIGHCVSS 3.1
EPSS 1.21%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.